Deal4Me

Deal4Me

Known Toolbar

by InstalleRex-WebPick

What is Deal4Me?

Deal4Me is software application developed by InstalleRex-WebPick. It is most commonly found on computers running Windows 7 with nearly 65.28% of installations running this operating system. Deal4Me's installer is typically 1.00 MB in size and installs around 60 files.

Deal4Me is most popular in the United States with 50.00% of installations residing in this country.

About Deal4Me?

The Deal 4 Me web browser extension is a product of JustPlug.It and is distributed through the WebPick (InstalleRex) download and install manager. It is bundled with various adware offers and functions as a cross browser extension with multiple components, including a Windows service, an auto-starting feature, and a browser toolbar/plugin. This extension is specifically designed to deliver advertisements in the form of banner ads, hyper-text links, and pop-ups within the browser. In some cases, it may also hijack existing website advertising and inject affiliate codes in links as coupon offers. Additionally, the displayed advertisements may include deceptive malvertising ads for 'required' updates of common programs. Upon installation, the program may also install bundled adware utilities and additional browser extensions, as well as modify the browser's default security settings.

Multiple virus scanners have detected malware in Deal4Me.

EN.dll (MD5: 67ee6efc066c2d3a5bd277ba4b813e8b) has been flagged by 24 scanners:
Scanner Software Result
avast! Win32:Adware-gen [Adw]
AVG Generic5.BFGT
Baidu-International Adware.Win32.MultiPlug.bBN
Comodo Security Application.Win32.MultiPlug.AUAU
Dr.Web Trojan.Crossrider.29972
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.BN
IKARUS anti.virus PUA.BHO
K7 AntiVirus Adware ( 004a01c51 )
K7GW Adware ( 004a01c51 )
TrendMicro-HouseCall Suspicious_GEN.F47V0815
Lavasoft Ad-Aware Gen:Variant.Adware.61989
AhnLab-V3 Trojan/Win32.Preloader
Avira AntiVir TR/Crypt.EPACK.Gen2
Bitdefender Gen:Variant.Adware.61989
Emsisoft Anti-Malware Gen:Variant.Adware.61989 (B)
F-Secure Gen:Variant.Adware.61989
G Data Gen:Variant.Adware.61989
Malwarebytes PUP.Optional.MultiPlug
MicroWorld-eScan Gen:Variant.Adware.61989
Kaspersky not-a-virus:AdWare.Win32.MultiPlug.bfk
Sophos Generic PUA GP
VIPRE Antivirus Trojan.Win32.Generic!BT
Qihoo-360 HEUR/Malware.QVM10.Gen
Trend Micro ADW_MULTIPLUG
L.exe (MD5: 0e7b4aef600f521c24a068e618019acb) has been flagged by 48 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Strictor.61989
AhnLab-V3 Trojan/Win32.Preloader
ALYac Gen:Variant.Adware.Strictor.61989
avast! Win32:Adware-gen [Adw]
AVG Generic5.BULU
Avira Adware/Strictor.61989.38
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.MultiPlug.BBN
Bitdefender Gen:Variant.Adware.Strictor.61989
Comodo Security ApplicUnwnt
Dr.Web Trojan.Crossrider.37456
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.BN
Fortinet FortiGate Riskware/MultiPlug
F-Prot W32/A-958929e9!Eldorado
F-Secure Gen:Variant.Adware.Strictor.61989
G Data Gen:Variant.Adware.Strictor.61989
K7 AntiVirus Adware ( 004a07251 )
K7GW Adware ( 004a07251 )
Malwarebytes PUP.Optional.MultiPlug
McAfee Artemis!0E7B4AEF600F
McAfee-GW-Edition BehavesLike.Win32.BadFile.jh
MicroWorld-eScan Gen:Variant.Adware.Strictor.61989
NANO AntiVirus Riskware.Win32.Strictor.dfywqx
Panda Antivirus Trj/Chgt.I
Sophos Generic PUA KI
Symantec Adware.Popuppers
Trend Micro TROJ_GEN.R02SC0EJ714
TrendMicro-HouseCall TROJ_GEN.R02SC0EJ714
VIPRE Antivirus Trojan.Win32.Generic!BT
AegisLab AdWare.W32.MegaSearch
Agnitum Outpost PUA.MultiPlug!
Antiy-AVL GrayWare[AdWare:not-a-virus,HEUR]/Win32.Agent
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.153998 (B)
Rising Antivirus PE:Trojan.Win32.Generic.175E7B5E!392067934
Bkav FE W32.ToolbarEscort.Adware
CAT-QuickHeal AdWare.BHO.r6 (Not a Virus)
IKARUS anti.virus Win32.SuspectCrc
Kaspersky not-a-virus:AdWare.Win32.BHO.bdnc
Vba32 AntiVirus AdWare.BHO
Tencent Win32.Adware.Agent.Aiio
Avira AntiVir ADWARE/Adware.Gen
Norman Multiplug.A
nProtect Adware.Agent.NYS
SUPERAntiSpyware Adware.Multiplug/Variant
Qihoo-360 Win32/Trojan.Adware.273
Zillya Adware.MultiPlug.Win64.10
ViRobot Adware.MultiPlug.398336
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
tEx.dll (MD5: 6bdd2b931e45fa910c821a3beb07928c) has been flagged by 47 scanners:
Scanner Software Result
Lavasoft Ad-Aware Application.Generic.604038
Agnitum Outpost PUA.BHO!
Antiy-AVL Trojan/Win32.TGeneric
avast! Win32:Dropper-gen [Drp]
AVG Generic5.APQB
Baidu-International Adware.Win32.BHO.71
Bitdefender Application.Generic.604038
Bkav FE W32.ToolbarEscort.Adware
CAT-QuickHeal AdWare.BHO.r6 (Not a Virus)
Comodo Security ApplicUnwnt.Win32.InstallRex.ALC
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.T
F-Secure Application.Generic.604038
G Data Application.Generic.604038
IKARUS anti.virus Win32.SuspectCrc
K7 AntiVirus Adware ( 004976341 )
K7GW Adware ( 004976341 )
Kaspersky not-a-virus:AdWare.Win32.BHO.bdnc
Malwarebytes PUP.Optional.MultiPlug.A
McAfee RDN/Generic PUP.x!cf3
McAfee-GW-Edition RDN/Generic PUP.x!cf3
MicroWorld-eScan Application.Generic.604038
NANO AntiVirus Riskware.Win32.BHO.dbdfeq
Panda Antivirus Trj/CI.A
Sophos Generic PUA IO
Symantec Adware.BL
Trend Micro ADW_MULTIPLUG
TrendMicro-HouseCall ADW_MULTIPLUG
Vba32 AntiVirus AdWare.BHO
VIPRE Antivirus Trojan.Win32.Generic!BT
AegisLab AdWare.W32.MegaSearch
AhnLab-V3 Adware/Win32.Agent
Avira TR/Graftor.151492.2
AVware Trojan.Win32.Generic!BT
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.151492 (B)
Fortinet FortiGate Riskware/MultiPlug
Tencent Win32.Adware.Agent.Aiio
Avira AntiVir ADWARE/Adware.Gen
Norman Multiplug.A
nProtect Adware.Agent.NYS
Rising Antivirus PE:Trojan.Win32.Generic.1686F646!377943622
SUPERAntiSpyware Adware.Multiplug/Variant
Qihoo-360 Win32/Trojan.Adware.273
Zillya Adware.MultiPlug.Win64.10
Dr.Web Trojan.Crossrider.8415
ViRobot Adware.MultiPlug.398336
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
F-Prot W32/A-4a0379ef!Eldorado
83S3PmrAxO.exe (MD5: d39594b39e884ec8a901b37ef37b98f0) has been flagged by 33 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Graftor.146103
AhnLab-V3 Trojan/Win32.Preloader
AVG Generic_r.QQ
Baidu-International Trojan.Win32.MultiPlug.bAG
Bitdefender Gen:Variant.Adware.Graftor.146103
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.146103 (B)
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.AG
F-Secure Gen:Variant.Adware.Graftor.146103
G Data Gen:Variant.Adware.Graftor.146103
Malwarebytes PUP.Optional.MultiPlug
MicroWorld-eScan Gen:Variant.Adware.Graftor.146103
Panda Antivirus Trj/Genetic.gen
Avira ADWARE/MultiPlug.Gen
McAfee-GW-Edition BehavesLike.Win32.Adware.jm
Sophos Generic PUA MP
avast! Win32:Adware-gen [Adw]
AVware Trojan.Win32.Generic!BT
Comodo Security Application.Win32.MultiPlug.AUAU
Fortinet FortiGate Riskware/MultiPlug
IKARUS anti.virus PUA.BHO
K7 AntiVirus Adware ( 004a01c51 )
K7GW Adware ( 004a01c51 )
TrendMicro-HouseCall Suspicious_GEN.F47V0816
VIPRE Antivirus Trojan.Win32.Generic!BT
McAfee RDN/Generic PUP.x!c2k
Symantec Adware.BL
Qihoo-360 Win32/Trojan.Adware.453
Tencent Win64.Adware.Multiplug.Lmbj
Avira AntiVir TR/Crypt.EPACK.Gen2
NANO AntiVirus Trojan.Win32.EPACK.ddxhzv
Dr.Web Trojan.Crossrider.29972
Kaspersky not-a-virus:AdWare.Win32.MultiPlug.bfk
Trend Micro ADW_MULTIPLUG
11og_CFkV.dll (MD5: f3147f862ab2fe690c49d6eed659cb57) has been flagged by 31 scanners:
Scanner Software Result
avast! Win32:Adware-gen [Adw]
AVG Generic5.BFGT
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.MultiPlug.BBN
Comodo Security Application.Win32.MultiPlug.AUAU
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.BN
Fortinet FortiGate Riskware/MultiPlug
IKARUS anti.virus PUA.BHO
K7 AntiVirus Adware ( 004a01c51 )
K7GW Adware ( 004a01c51 )
TrendMicro-HouseCall Suspicious_GEN.F47V0816
VIPRE Antivirus Trojan.Win32.Generic!BT
AhnLab-V3 Trojan/Win64.Preloader
G Data Win64.Adware.Megasearch.C
Malwarebytes PUP.Optional.MultiPlug.A
McAfee RDN/Generic PUP.x!c2k
McAfee-GW-Edition RDN/Generic PUP.x!c2k
Symantec Adware.BL
Bitdefender Adware.Generic.939645
Emsisoft Anti-Malware Adware.Generic.939645 (B)
MicroWorld-eScan Adware.Generic.939645
Qihoo-360 Win32/Trojan.Adware.453
Tencent Win64.Adware.Multiplug.Lmbj
Avira AntiVir TR/Crypt.EPACK.Gen2
NANO AntiVirus Trojan.Win32.EPACK.ddxhzv
Sophos Generic PUA DE
Dr.Web Trojan.Crossrider.29972
Lavasoft Ad-Aware Gen:Variant.Adware.61989
F-Secure Gen:Variant.Adware.61989
Kaspersky not-a-virus:AdWare.Win32.MultiPlug.bfk
Trend Micro ADW_MULTIPLUG

Software Details

URL:
–
Support:
–
Installation path:
C:\ProgramData\deal4me
Uninstaller:
"C:\ProgramData\Deal4Me\Us.exe" /s /n /C:"ExecuteCommands;UninstallCommands" ""
Size:
1.00 MB
Language:
English

Deal4Me Executable Details

Primary executable:
us.exe
Name:
Deal4Me
Path:
C:\ProgramData\deal4me\us.exe
MD5:
bca52abb986cea83b447557b37342e49
SHA-1:
–
SHA-256:
–
Files installed by Deal4Me
File Type Filename MD5
EXE
bca52abb986cea83b447557b37342e49
EXE
470a02e6e6d293c6d2419e1778162c84
DLL
EN.dll
Malware
67ee6efc066c2d3a5bd277ba4b813e8b
EXE
L.exe
Malware
0e7b4aef600f521c24a068e618019acb
EXE
743a67c90b7ab894aa9c211bb435f3d4
DLL
fa8e8dfeb61889c699f21e8f8b2b3e67
EXE
e964bc508f0bda22e201e540e5a1a984
DLL
tEx.dll
Malware
6bdd2b931e45fa910c821a3beb07928c
EXE
d39594b39e884ec8a901b37ef37b98f0
DLL
aeb287ca935312040c5f358dc34cf368